PT-2017-14119 · Xen+1 · Xen+1
Vitaly Kuznetsov
·
Published
2017-10-18
·
Updated
2018-01-16
·
CVE-2017-15591
CVSS v3.1
6.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Xen versions 4.5.x through 4.9.x
Description
An issue in the DMOP map/unmap implementation allows attackers who control a stub domain kernel or tool stack to cause a denial of service, resulting in a host OS crash, due to a missing comparison of range start to range end.
Recommendations
For Xen versions 4.5.x through 4.9.x, update to a version that includes the fix for the DMOP map/unmap implementation issue to prevent a denial of service.
Fix
DoS
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Suse
Xen